> Markdown version of [/jobs/ext/2039085-senior-cybersecurity-specialist](https://www.wearedevelopers.com/jobs/ext/2039085-senior-cybersecurity-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cybersecurity Specialist - **Company:** Seneca Holdings - **Location:** Tampa, FL, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Xacta, Software System Penetration Testing, Systems Engineering, Cyber Security, Databases, Document Management Systems, Software Vulnerability Management, SARS Software Products, Information Technology, Vulnerability Analysis - **Published:** August 12, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/17910495?backUrl=%2Fcareer%2F17910495%2FSenior-Cybersecurity-Specialist-Florida-Tampa ## About the Role * Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent relevant experience. * Active Top Secret clearance. * 5+ years of experience supporting cybersecurity, Information Assurance, RMF, or related activities. * Experience developing and maintaining RMF/A&A documentation and security authorization packages. * Experience with vulnerability management, security assessments, ACAS, STIGs, and POA&Ms. * Working knowledge of NIST 800-53, NIST 800-37, DoW RMF, and applicable DoW cybersecurity requirements. * Experience using eMASS, XACTA, or similar RMF management tools. * DoW 8570/8140-compliant cybersecurity certification appropriate to the position. * Ability to work independently and communicate effectively with government and contractor stakeholders. Desired Skills: * Experience supporting USSOCOM, SOCRATES, C4IAS, or other DoW/Intelligence Community programs. * Experience working in classified environments and supporting systems across multiple security enclaves. * Experience supporting IATT and ATO processes from initiation through authorization. * Experience with DISA STIGs/SRGs, ACAS, penetration testing, and continuous monitoring. * Experience addressing USCYBERCOM IAVAs/IAVBs and cybersecurity tasking. * Experience with privileged user/system administrator responsibilities. * Experience with Supply Chain Risk Management (SCRM) and related cybersecurity requirements. * CISSP or other advanced cybersecurity certification. * Experience coordinating with SCAs, AOs, ISSOs, ISSMs, and other government cybersecurity stakeholders. ## Description Great Hill is seeking a Senior Cybersecurity Specialist who will provide cybersecurity operations and Risk Management Framework (RMF) support for SOCRATES systems and enterprise IT initiatives in Tampa, FL. The position will support security compliance, system security assessments, vulnerability management, continuous monitoring, and cybersecurity documentation throughout the system lifecycle. Roles and Responsibilities include, but are not limited to: * Provide senior-level cybersecurity and Risk Management Framework (RMF) support for SOCRATES and C4IAS enterprise IT initiatives. * Develop, maintain, and manage RMF and Assessment & Authorization (A&A) documentation, including System Security Plans (SSPs), Security Assessment Reports (SARs), Security Authorization Packages, and Plans of Action and Milestones (POA&Ms). * Support IATT and ATO activities and coordinate with Security Control Assessors (SCAs), Authorizing Officials (AOs), ISSOs, and ISSMs. * Conduct security assessments, vulnerability scans, penetration testing, and compliance reviews to identify and address cybersecurity vulnerabilities. * Perform ACAS scans and support remediation of IAVAs, IAVBs, CVEs, STIG findings, and other security vulnerabilities. * Develop and maintain technical POA&Ms and remediation plans, prioritizing findings based on risk and severity. * Support continuous monitoring and implement cybersecurity countermeasures throughout the system lifecycle. * Ensure cybersecurity requirements are incorporated into acquisition, systems engineering, testing, integration, and implementation activities. * Provide cybersecurity support for the testing, integration, installation, and deployment of hardware and software. * Maintain A&A and cybersecurity documentation using eMASS, XACTA, or equivalent RMF management systems. * Support classified security activities, including document control, classified material inventories, access requests, and security-related databases. * Ensure compliance with applicable DoW, Intelligence Community, NIST, DISA, USCYBERCOM, and USSOCOM cybersecurity policies and requirements. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Kubernetes and Microservices with Multi-Model Databases](https://www.wearedevelopers.com/videos/382-kubernetes-and-microservices-with-multi-model-databases) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Fault Tolerance and Consistency at Scale: Harnessing the Power of Distributed SQL Databases](https://www.wearedevelopers.com/videos/1146-fault-tolerance-and-consistency-at-scale-harnessing-the-power-of-distributed-sql-databases) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer)